Name : squashfs-tools Product : Fedora 18 Version : 4.2 Release : 5.fc18 URL : http://squashfs.sourceforge.net/ Summary : Utility for the creation of squashfs filesystems Description : Squashfs is a highly compressed read-only filesystem for Linux. This package contains the utilities for manipulating squashfs filesystems.
Backported fixes for bz 842458 (CVE-2012-4024) and bz 842460 (CVE-2012-4025) Backported fix for bz 842458 (CVE-2012-4024) ------------------------------------------------------------------------------- - References:
[ 1 ] Bug #842460 - CVE-2012-4025 squashfs-tools: integer overflow in queue_init() may lead to abitrary code execution https://bugzilla.redhat.com/show_bug.cgi?id=842460 [ 2 ] Bug #842458 - CVE-2012-4024 squashfs-tools: remote arbitrary code execution via crafted list file https://bugzilla.redhat.com/show_bug.cgi?id=842458 ------------------------------------------------------------------------------- -
This update can be installed with the "yum" update program. Use su -c 'yum update squashfs-tools' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/.